Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

New CISA Guide Helps Agencies Adopt SASE For Zero Trust

June 25, 2026

Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development

June 25, 2026

Trust in Automated AI Vulnerability Scanning Collapses to 9%

June 25, 2026
Facebook X (Twitter) Instagram
Friday, June 26
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Over 160,000 Companies Notify Regulator of GDPR Breaches
News

Over 160,000 Companies Notify Regulator of GDPR Breaches

Team-CWDBy Team-CWDJanuary 23, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


The number of organizations notifying their GDPR regulator of a data breach surged by 22% to a daily average of 443 in 2025, according to DLA Piper.

The global law firm has been analyzing GDPR regulatory activity every year since the data protection regulation came into being in 2018.

The past 12 months bucked a long-term trend that has seen average daily notifications plateauing and it’s the first time since 2018 that the figure has exceeded 400, DLA Piper noted.

Germany, the Netherlands and Poland retained their leading positions for the highest number of data breaches notified in 2025.

Geopolitical unrest and AI-enabled threats may be behind the increase in breaches of personally identifiable information (PII), which is regulated by the GDPR, the law firm suggested.

Ross McKean, partner and chair of DLA Piper’s UK data protection and cybersecurity practice, claimed that cyber-threat volumes have reached unprecedented levels.

“The [breach] statistic resonates with DLA Piper’s cybersecurity team’s experience following one of our busiest years helping our clients to navigate cyber-attacks and data breaches,” he continued.

“Confirmation of such a significant increase in personal data breach notifications in black and white is, for me, the quieting canary. Coupled with the slew of new cybersecurity laws impacting business, some of which impose personal liability on members of management bodies, our report underscores the urgency and need for organizations to optimize cyber defenses and operational resilience.”

GDPR Fines Hold Steady

Despite the uptick in breach volumes, the total sum of GDPR fines issued over the past 12 months held steady compared to previous years.

Some €1.2bn ($1.4bn) in penalty notices was issued across Europe, bringing the total since May 2018 to €7.1bn ($8.4bn). Unsurprisingly, considering most foreign tech giants have their European operations headquartered in low-tax Ireland, the Irish Data Protection Commission accounts for the majority of this sum (€4bn).

Read more on breach notifications: GDPR Fines Total €1.2bn in 2024

The Dublin-based regulator also imposed the highest fine in 2025: a €530m penalty levied against TikTok for transferring user data to China, breaching the GDPR’s international data transfer restrictions.

“The fact that combined GDPR fines held steady at €1.2bn shows regulators remain highly active, particularly in areas such as information security, international data transfers, transparency and the complex interplay between AI innovation and data protection laws,” noted McKean.

However, there has been controversy over the Irish Data Protection Commission’s handling of some cases. Critics claim that as the “lead authority” in many cases, it has become something of a bottleneck.

Some have also suggested that it has been too soft on organizations that infringe the GDPR, setting fines too low and favoring “amicable resolution,” which allows lawyers to argue their way out of punishment for violations.

These dissenting voices have grown stronger after the regulator appointed a former Meta lobbyist as one of its commissioners in September 2025.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleOpenAI to Show Ads in ChatGPT for Logged-In U.S. Adults on Free and Go Plans
Next Article Black Basta Ransomware Leader Added to EU Most Wanted and INTERPOL Red Notice
Team-CWD
  • Website

Related Posts

News

New CISA Guide Helps Agencies Adopt SASE For Zero Trust

June 25, 2026
News

Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development

June 25, 2026
News

Trust in Automated AI Vulnerability Scanning Collapses to 9%

June 25, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

Mobile app permissions (still) matter more than you may think

February 27, 2026

What it takes to fool facial recognition

March 14, 2026

A stealthy RAT burrowing deep into Android devices

May 26, 2026

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.